- Search BSI
- Verify a Certificate
Suggested region and language based on your location
Your current region and language
Organizations today recognize the importance of adopting a robust risk management programme. This course builds on what you already know about the framework specified in ISO/IEC 27001, which is now expanding to ISO/IEC 27005:2018.
This two-day training will equip you with practical guidance to manage information security risks. It will help you to review your existing risk management and ensure the measures are robust enough to reduce the identified risks. You will leave able to prioritize effectively and choose appropriate risk treatments within your organization.
This course will help you:
By the end of this course delegates will be able to:
Anyone who wants to learn about:
The course is applicable to individuals from any size or type of organization who are currently involved in (or will be in the future) planning, implementing, maintaining, supervising or assessing information security, as part of an ISO/IEC 27001 ISMS or a standalone system.
On completion, you will be awarded an internationally recognized BSI Training Academy certificate.
You should have a basic knowledge of ISO/IEC 27001:2013 and ISO/IEC 27002:2013, as well as an understanding of the key principles of an ISMS.
We also recommend that you have an awareness of generic risk assessments and basic understanding of information security principles and terminology.
Some delegates on this course will have already attended our Information Security Management System (ISMS) Requirements of ISO 27001:2013 or Information Security Management System (ISMS) Implementing ISO/IEC 27001:2013 course.
We also recommend delegates have an understanding of the risk assessment approach currently employed in their organizations, should one exist.
Reach out and see how we can help guide you on your path to sustainable operational success.